Security and Compliance Analyst

22 hours ago


Bengaluru, India Anumana Full time

Position: Security and Compliance Analyst

Experience Range: 2 to 4 yrs

Job Location: Bangalore, India

Work Mode: Hybrid (3 days in the office, 2 days remote)


Job Summary:

Anumana is seeking a detail-oriented and proactive Security and Compliance Analyst to ensure

our organization’s adherence to international security standards and regulatory requirements.


The successful candidate will play a key role in the development, implementation, and continuous improvement of Anumana's Information Security Management System (ISMS) in compliance with ISO/IEC 27001, ISO/IEC 27002, and ISO 13485 standards.


This role involves close collaboration with multiple departments—HR, Legal, IT, Engineering, and Quality/Regulatory teams—to maintain a robust security and compliance posture. The Security and Compliance Analyst will also be responsible for managing third-party risk assessments, ensuring compliance with global privacy regulations (such as GDPR), and supporting the overall

Information Security Program.


Key Responsibilities:


1. Compliance Management

  • Maintain and continuously improve the Information Security Management System (ISMS) to comply with ISO/IEC 27001, ISO/IEC 27002, and ISO 13485 standards.
  • Coordinate with the Quality and Regulatory team to align security controls with ISO 13485 requirements for medical device software.
  • Develop and update policies, procedures, and documentation necessary for maintaining certification status.
  • Conduct internal audits and prepare for external audits, ensuring that all necessary evidence is documented and accessible.


2. Cross-Department Collaboration

  • Work closely with HR, Legal, IT, Engineering, and other departments to ensure that information security requirements are consistently integrated across the organization.
  • Guide on security and compliance matters, including secure practices, policy enforcement, and risk mitigation.
  • Assist in the development of training materials and conduct regular security awareness sessions for staff.


3. Third-Party Risk Management

  • Respond to third-party risk management questionnaires, ensuring that external parties meet Anumana’s security standards.
  • Perform risk assessments on vendors, suppliers, and partners, evaluating their adherence to security requirements.
  • Maintain and update a database of third-party risk assessments and ensure regular monitoring of vendor compliance.


4. Privacy and Confidentiality Management

  • Monitor and enforce privacy compliance across the organization, focusing on GDPR, CCPA, and other relevant global data protection regulations.
  • Track data protection incidents and coordinate response and remediation activities.
  • Work with Legal and HR teams to ensure confidentiality agreements are properly managed and enforced.


5. Security Program Oversight

  • Support the overall information security program by conducting risk assessments, tracking key performance indicators (KPIs), and managing security metrics.
  • Develop and maintain security policies, standards, and guidelines based on best practices and relevant frameworks.
  • Monitor and assess compliance with organizational policies, industry standards, and applicable regulations.
  • Identify areas of improvement in security controls and recommend mitigation strategies.


6. Audit Preparation & Evidence Management

  • Gather, organize, and maintain documentation of control evidence required for internal and external audits.
  • Track audit findings, follow up on remediation actions, and ensure they are completed on time.
  • Prepare reports summarizing compliance activities, audit results, and risk assessments for management review.


Qualifications Required:

  • Bachelor's degree in Information Security, Computer Science, Risk Management, or a related field (or equivalent experience).
  • 2+ years of experience in information security, compliance, risk management, or related fields.
  • Strong understanding of ISO/IEC 27001, ISO/IEC 27002, and ISO 13485 standards.
  • Experience with information security frameworks (e.g., NIST, HITRUST) and best practices.
  • Knowledge of data protection regulations, including GDPR, CCPA, and other privacy laws.
  • Ability to respond to third-party risk assessments and manage vendor compliance.
  • Familiarity with GRC (Governance, Risk, and Compliance) tools and methodologies.


Preferred:

  • Professional certifications such as CISSP, CISM, CRISC, CCSK, or ISO/IEC 27001 Lead Auditor/Implementer.
  • Experience working in the medical device or healthcare sector, with familiarity in Software as a Medical Device (SaaMD).
  • Knowledge of security assessment tools and vulnerability management practices.
  • Understanding of secure software development and DevSecOps practices.



  • Bengaluru, India Anumana Full time

    Position: Security and Compliance AnalystExperience Range: 2 to 4 yrsJob Location: Bangalore, IndiaWork Mode: Hybrid (3 days in the office, 2 days remote)Job Summary:Anumana is seeking a detail-oriented and proactive Security and Compliance Analyst to ensureour organization’s adherence to international security standards and regulatory requirements.The...


  • Bengaluru, India Shopalyst Full time

    Role: Compliance Analyst / Sr. Compliance AnalystLocation : TrivandrumAbout Shopalyst:Shopalyst offers a Discovery Commerce platform for digital marketers. Combining data, AI and deep integrations with digital media and e-commerce platforms, Shopalyst connects people with products they love. More than 500 marquee brands leverage our Saa S platform for data...


  • Bengaluru, Karnataka, India Epsilon Full time

    Job Title: Senior Cyber Security Risk and Compliance Analyst SpecialistAbout Epsilon:Epsilon is the leader in outcome-based marketing, enabling marketers to personalize consumer journeys with performance transparency through its marketing platform, PeopleCloud. This platform helps anticipate, activate, and prove measurable business outcomes.Role Summary:We...


  • Bengaluru, India Shopalyst Full time

    Role: Compliance Analyst / Sr. Compliance AnalystLocation : TrivandrumAbout Shopalyst: Shopalyst offers a Discovery Commerce platform for digital marketers. Combining data, AI and deep integrations with digital media and e-commerce platforms, Shopalyst connects people with products they love. More than 500 marquee brands leverage our SaaS platform for data...


  • Bengaluru, India Shopalyst Full time

    Role: Compliance Analyst / Sr. Compliance Analyst Location : Trivandrum About Shopalyst:  Shopalyst offers a Discovery Commerce platform for digital marketers. Combining data, AI and deep integrations with digital media and e-commerce platforms, Shopalyst connects people with products they love. More than 500 marquee brands leverage our SaaS platform for...


  • Bengaluru, India Shopalyst Full time

    Role: Compliance Analyst / Sr. Compliance AnalystLocation : TrivandrumAbout Shopalyst: Shopalyst offers a Discovery Commerce platform for digital marketers. Combining data, AI and deep integrations with digital media and e-commerce platforms, Shopalyst connects people with products they love. More than 500 marquee brands leverage our SaaS platform for data...

  • Security Analyst

    1 month ago


    Bengaluru, India MNR Solutions Full time

    Job Description :We are looking for a skilled and experienced Security Analyst to join our team in Bangalore. The Security Analyst will be responsible for protecting the organization's computer systems, networks, and data from potential security threats, vulnerabilities, and attacks. This role involves proactive monitoring, identifying threats, and...


  • Bengaluru, Karnataka, India Leading-Biotechnology-Company Full time

    The Staff IT Security, Risk & Compliance Analyst will work within the security certifications team to support and mature a strong security certifications and third-party risk management (TPRM) program, with an immediate goal to provide operation support in maintaining ISO:27001 and SOC 2 certifications for Illuminas cloud-based analytics products. The role...


  • Bengaluru, India ALTERYX Full time

    We’re looking for problem solvers, innovators, and dreamers who are searching for anything but business as usual. Like us, you’re a high performer who’s an expert at your craft, constantly challenging the status quo. You value inclusivity and want to join a culture that empowers you to show up as your authentic self. You know that success hinges on...

  • IT Security Analyst

    1 month ago


    Bengaluru, India May I Help You Full time

    IT Security AnalystLocation : Bangalore and PunePlease share cv to contact@mayihelpu.co.inQualifications and SkillsBachelor's degree in Computer Science, Information Security, or a related field.Senior-level IT security experience of 7 to 10 years.Strong knowledge of information security principles, standards, and practices.Experience with security...


  • Bengaluru, India StatusNeo Full time

    Job descriptionJob Title: Cyber Security AnalystCompany: StatusNeoAboutAt StatusNeo, we're dedicated to ensuring a secure digital environment as we embrace cutting-edge technologies and innovations. We are looking for a Junior Cyber Security Analyst to join our dynamic team. This entry-level position is ideal for recent graduates or individuals with up to...

  • Security Analyst L2

    2 months ago


    Bengaluru, India 101 Bloom Energy Full time

    Description : Security Analyst L2 Bloom Energy, a solid oxide fuel cell company, is looking for a Security Analyst L2 to join its world class team. This individual should be a dynamic professional who is looking for a rewarding future in one of today’s most exciting technologies. As Security Analyst L2 - you will be responsible Security Operation...

  • Anti Piracy Analyst

    1 month ago


    Bengaluru, India OpSec Security Full time

    OpSec Security is a well-established and recognized global leader in the provision of physical, digital and online anti-counterfeiting and brand protection solutions. Employing approximately 1,000 colleagues it operates from multiple locations including business hubs in the USA, UK and has other sales and support offices in the EU and the Far East. OpSec is...


  • Bengaluru, India StatusNeo Full time

    Job description Job Title: Cyber Security Analyst Company: StatusNeo About At StatusNeo, we're dedicated to ensuring a secure digital environment as we embrace cutting-edge technologies and innovations. We are looking for a Junior Cyber Security Analyst to join our dynamic team. This entry-level position is ideal for recent graduates or individuals with up...


  • Bengaluru, India StatusNeo Full time

    Job descriptionJob Title: Cyber Security AnalystCompany: StatusNeoAboutAt StatusNeo, we're dedicated to ensuring a secure digital environment as we embrace cutting-edge technologies and innovations. We are looking for a Junior Cyber Security Analyst to join our dynamic team. This entry-level position is ideal for recent graduates or individuals with up to...


  • Bengaluru, India StatusNeo Full time

    Job descriptionJob Title: Cyber Security AnalystCompany: StatusNeoAboutAt StatusNeo, we're dedicated to ensuring a secure digital environment as we embrace cutting-edge technologies and innovations. We are looking for a Junior Cyber Security Analyst to join our dynamic team. This entry-level position is ideal for recent graduates or individuals with up to...


  • Bengaluru, Karnataka, India Mouser Electronics Full time

    About Mouser ElectronicsMouser Electronics is a leading global distributor of electronic components.Job DescriptionWe are seeking a highly skilled IT Security Risk Analyst to join our team. As an IT Security Risk Analyst, you will play a critical role in identifying and assessing IT security risks and exposures on new and existing applications and...


  • Bengaluru, Karnataka, India Epsilon Full time

    Company OverviewEpsilon, a global leader in outcome-based marketing, empowers marketers to create personalized consumer journeys with measurable business outcomes. As a trusted partner, Epsilon helps top brands, agencies, and publishers succeed through its award-winning data and technology platform.About the RoleWe are seeking an experienced Security Risk...

  • Anti Piracy Analyst

    2 months ago


    Bengaluru, India OpSec Security Full time

    OpSec Security is a well-established and recognized global leader in the provision of physical, digital and online anti-counterfeiting and brand protection solutions. Employing approximately 1,000 colleagues it operates from multiple locations including business hubs in the USA, UK and has other sales and support offices in the EU and the Far East. OpSec is...

  • Anti Piracy Analyst

    2 months ago


    Bengaluru, India OpSec Security Full time

    OpSec Security is a well-established and recognized global leader in the provision of physical, digital and online anti-counterfeiting and brand protection solutions. Employing approximately 1,000 colleagues it operates from multiple locations including business hubs in the USA, UK and has other sales and support offices in the EU and the Far East. OpSec is...